Patentable/Patents/US-8701193
US-8701193

Malware detection via signature indices

PublishedApril 15, 2014
Assigneenot available in USPTO data we have
Inventorsnot available in USPTO data we have
Technical Abstract

A method, article of manufacture, and apparatus for efficiently processing information are disclosed. In some embodiments, a first signature index is received. The first signature index is compared to a second signature index. A negative signature match is based on the comparison. A file is flagged based on the negative match.

Patent Claims
6 claims

Legal claims defining the scope of protection, as filed with the USPTO.

1

1. A method for processing information, comprising receiving a first signature index comprising a first signature and a location of the signature origin, wherein the first signature index is created by a backup application; comparing the first signature index to a second signature index; determining a negative signature match based on the comparison; flagging a file based on the negative match; after flagging the file, comparing an earlier version of the first signature index produced during a previous backup by the backup application to the second signature index; and storing a signature origin time for each version compared in a storage device.

2

2. The method as recited in claim 1 , further comprising quarantining the file.

3

3. The method as recited in claim 1 , wherein the second signature index contains a list of signatures for software applications.

4

4. The method as recited in claim 1 , wherein the second signature index is created by a backup application.

5

5. A system for processing information, comprising: a storage device; and a processor configured to receive a first signature index comprising a first signature and a location of the signature origin, wherein the first signature index is created by a backup application, compare the first signature index to a second signature index, determine a negative signature match based on the comparison, flag a file based on the negative match, after flagging the file, compare an earlier version of the first signature index produced during a previous backup by the backup application to the second signature index, and store a signature origin time for each signature compared in a storage device.

6

6. A computer program product for processing data, comprising at least one nontransitory processor readable medium having program instructions embodied therein for: receiving a first signature index comprising a first signature and a location of the signature origin, wherein the first signature index is created by a backup application; comparing the first signature index to a second signature index; determining a negative signature match based on the comparison; flagging a file based on the negative match; after flagging the file, comparing an earlier version of the first signature index produced during a previous backup by the backup application to the second signature index; and storing a signature origin time for each signature compared in a storage device.

Classification Codes (CPC)

Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.

Patent Metadata

Filing Date

September 30, 2009

Publication Date

April 15, 2014

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “Malware detection via signature indices” (US-8701193). https://patentable.app/patents/US-8701193

© 2026 Patentable. All rights reserved.

Patentable is a research and drafting-assistant tool, not a law firm, and does not provide legal advice. Documents we generate are drafts for review by a licensed patent attorney.